OTL logfile created on: 01-01-2012 17:43:49 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Users\Escritorio
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000340A | Country: Chile | Language: ESL | Date Format: dd-MM-yyyy
2,87 Gb Total Physical Memory | 1,95 Gb Available Physical Memory | 68,09% Memory free
4,71 Gb Paging File | 3,91 Gb Available in Paging File | 82,99% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Archivos de programa
Drive C: | 149,04 Gb Total Space | 66,21 Gb Free Space | 44,42% Space Free | Partition Type: NTFS
Computer Name: TOSHIBAL305 | User Name: Users | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012-01-01 17:42:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Users\Escritorio\OTL.exe
PRC - [2011-11-29 12:50:40 | 000,182,576 | ---- | M] (Blabbers Communications LTD) -- C:\Archivos de programa\BrowserCompanion\BCHelper.exe
PRC - [2011-09-18 22:19:08 | 000,425,984 | ---- | M] (ESET, spol. s r.o.) -- C:\Archivos de programa\Eset\UpdateReminder.exe
PRC - [2011-06-24 00:54:50 | 000,949,376 | ---- | M] (Eset ) -- C:\Archivos de programa\Eset\nod32kui.exe
PRC - [2011-06-24 00:54:50 | 000,552,064 | ---- | M] (Eset ) -- C:\Archivos de programa\Eset\nod32krn.exe
PRC - [2010-10-27 06:00:02 | 001,015,808 | ---- | M] (Ares Development Group) -- C:\Archivos de programa\Ares\Ares.exe
PRC - [2009-09-08 17:25:52 | 000,096,334 | ---- | M] (Canon Inc.) -- C:\Archivos de programa\Canon\CAL\CALMAIN.exe
PRC - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLIDSVC.EXE
PRC - [2009-08-18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLIDSVCM.EXE
PRC - [2008-10-27 15:56:48 | 000,009,216 | ---- | M] (Agere Systems) -- C:\WINDOWS\system32\agrsmsvc.exe
PRC - [2008-04-14 09:00:00 | 001,036,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2005-01-31 10:45:20 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Archivos de programa\Archivos comunes\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2002-04-11 05:19:36 | 000,077,824 | ---- | M] () -- C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
PRC - [2002-04-11 05:19:34 | 000,069,632 | ---- | M] (Hewlett-Packard) -- C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
========== Modules (No Company Name) ==========
MOD - [2011-09-05 14:05:00 | 000,301,056 | ---- | M] () -- C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\PDFShell.ESP
MOD - [2011-08-07 08:54:44 | 000,362,029 | ---- | M] () -- C:\Archivos de programa\BrowserCompanion\sqlite3.dll
MOD - [2011-06-24 00:54:51 | 000,068,664 | ---- | M] () -- C:\Archivos de programa\Eset\pr_emon.dll
MOD - [2011-06-24 00:54:51 | 000,056,376 | ---- | M] () -- C:\Archivos de programa\Eset\pr_imon.dll
MOD - [2011-06-24 00:54:50 | 000,117,816 | ---- | M] () -- C:\Archivos de programa\Eset\nod32rui.dll
MOD - [2011-06-24 00:54:50 | 000,056,376 | ---- | M] () -- C:\Archivos de programa\Eset\pr_upd.dll
MOD - [2011-06-24 00:54:50 | 000,023,608 | ---- | M] () -- C:\Archivos de programa\Eset\pr_dmon.dll
MOD - [2008-04-14 09:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2002-04-11 05:19:42 | 000,024,576 | ---- | M] () -- C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnfps.dll
MOD - [2002-04-11 05:19:36 | 000,077,824 | ---- | M] () -- C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011-06-24 00:54:50 | 000,552,064 | ---- | M] (Eset ) [Auto | Running] -- C:\Archivos de programa\Eset\nod32krn.exe -- (NOD32krn)
SRV - [2009-09-08 17:25:52 | 000,096,334 | ---- | M] (Canon Inc.) [Auto | Running] -- C:\Archivos de programa\Canon\CAL\CALMAIN.exe -- (CCALib8)
SRV - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2008-11-04 02:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2008-10-27 15:56:48 | 000,009,216 | ---- | M] (Agere Systems) [Auto | Running] -- C:\WINDOWS\system32\agrsmsvc.exe -- (AgereModemAudio)
SRV - [2006-10-26 15:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Archivos de programa\Archivos comunes\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2005-01-31 10:45:20 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Archivos de programa\Archivos comunes\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
========== Driver Services (SafeList) ==========
DRV - [2011-07-02 22:42:58 | 000,082,380 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\AFS2K.SYS -- (AFS2K)
DRV - [2011-06-24 00:54:50 | 000,512,096 | ---- | M] (Eset ) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\amon.sys -- (AMON)
DRV - [2011-06-24 00:54:50 | 000,015,424 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\nod32drv.sys -- (nod32drv)
DRV - [2010-03-25 11:08:30 | 000,105,728 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2010-03-20 12:54:04 | 000,100,992 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbdev.sys -- (hwusbdev)
DRV - [2010-03-20 11:28:00 | 000,117,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbnet.sys -- (ewusbnet)
DRV - [2009-01-22 17:25:26 | 000,120,064 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2008-10-27 15:56:48 | 001,161,888 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2008-05-22 17:53:58 | 000,154,624 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTS5121.sys -- (RSUSBSTOR)
DRV - [2007-10-02 17:32:14 | 004,613,120 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-04-20 17:07:00 | 001,296,256 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ar5416.sys -- (AR5416)
DRV - [1997-05-30 14:01:20 | 000,064,512 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\Drivers\SENTINEL.SYS -- (Sentinel)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cl/
IE - HKCU\..\URLSearchHook: {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Archivos de programa\shARES\prxtbshA0.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultthis.engineName: "shARES Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "shARES Customized Web Search"
FF - prefs.js..browser.startup.homepage: "http://search.babylo...babsrc=HP_Prot"
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Archivos de programa\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Archivos de programa\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpWinExt,version=5.0: C:\Archivos de programa\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Archivos de programa\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\[email protected]: C:\Archivos de programa\MSN Toolbar\Platform\5.0.1449.0\Firefox [2011-10-01 18:49:09 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{9051303c-7e41-4311-a783-d6fe5ef2832d}: C:\Archivos de programa\FVD Suite\addons\Firefox [2011-11-12 23:46:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Archivos de programa\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011-12-18 09:34:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Archivos de programa\Mozilla Firefox\components [2011-06-23 21:53:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Archivos de programa\Mozilla Firefox\plugins
[2011-06-24 01:37:20 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Extensions
[2011-12-18 09:08:47 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\extensions
[2011-12-18 09:05:44 | 000,000,000 | ---D | M] (shARES Community Toolbar) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\extensions\{9c905b42-976e-43c1-bc30-fc5937017909}
[2011-12-18 09:08:48 | 000,000,000 | ---D | M] (Browser Companion Helper) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\extensions\[email protected]
[2011-10-04 20:27:42 | 000,000,000 | ---D | M] (Microsoft Default Manager) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\extensions\DefaultManager@Microsoft
[2011-11-12 23:45:09 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\extensions\[email protected]
[2011-08-15 14:26:08 | 000,000,915 | ---- | M] () -- C:\Documents and Settings\Users\Datos de programa\Mozilla\Firefox\Profiles\x945tus3.default\searchplugins\conduit.xml
[2011-10-21 14:08:56 | 000,000,000 | ---D | M] (No name found) -- C:\Archivos de programa\Mozilla Firefox\extensions
[2011-10-21 14:08:56 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Archivos de programa\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011-06-23 22:21:47 | 000,000,000 | ---D | M] (Java Console) -- C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-06-24 12:24:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Archivos de programa\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011-11-12 23:46:12 | 000,000,000 | ---D | M] ("FVD Suite Toolbar") -- C:\ARCHIVOS DE PROGRAMA\FVD SUITE\ADDONS\FIREFOX
[2011-06-23 22:21:39 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\ARCHIVOS DE PROGRAMA\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011-04-14 13:43:44 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Archivos de programa\mozilla firefox\components\browsercomps.dll
[2011-12-18 09:08:40 | 000,002,288 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\babylon.xml
[2010-01-01 05:00:00 | 000,002,252 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\bing.xml
[2010-01-01 05:00:00 | 000,003,996 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\drae.xml
[2010-01-01 05:00:00 | 000,001,143 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\eBay-es.xml
[2010-01-01 05:00:00 | 000,001,178 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\wikipedia-es.xml
[2010-01-01 05:00:00 | 000,001,102 | ---- | M] () -- C:\Archivos de programa\mozilla firefox\searchplugins\yahoo-es.xml
O1 HOSTS File: ([2011-12-10 22:01:22 | 000,000,854 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 208.115.238.139 www.bancoestado.cl
O1 - Hosts: 208.115.238.139 bancoestado.cl
O1 - Hosts: 208.115.238.139 www.bmsc.com.bo
O1 - Hosts: 208.115.238.139 bmsc.com.bo
O2 - BHO: (Browser Companion Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Archivos de programa\BrowserCompanion\jsloader.dll ( )
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Open FVD Suite Toolbar) - {2B171655-A69C-5c18-B693-6CB5DC269D44} - C:\Archivos de programa\FVD Suite\addons\IE\FVDToolbar.dll (www.flashvideodownloader.org/fvd-suite/)
O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Archivos de programa\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Browser Companion Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Archivos de programa\BrowserCompanion\updatebhoWin32.dll ( )
O2 - BHO: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Archivos de programa\shARES\prxtbshA0.dll (Conduit Ltd.)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (FVD Suite Toolbar) - {2B171655-A69C-5c18-B693-6CB5DC269D41} - C:\Archivos de programa\FVD Suite\addons\IE\FVDToolbar.dll (www.flashvideodownloader.org/fvd-suite/)
O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Archivos de programa\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (Babylon Ltd.)
O3 - HKLM\..\Toolbar: (shARES Toolbar) - {9c905b42-976e-43c1-bc30-fc5937017909} - C:\Archivos de programa\shARES\prxtbshA0.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (shARES Toolbar) - {9C905B42-976E-43C1-BC30-FC5937017909} - C:\Archivos de programa\shARES\prxtbshA0.dll (Conduit Ltd.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe ARM] C:\Archivos de programa\Archivos comunes\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Browser companion helper] C:\Archivos de programa\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
O4 - HKLM..\Run: [nod32kui] C:\Archivos de programa\Eset\nod32kui.exe (Eset )
O4 - HKLM..\Run: [Share-to-Web Namespace Daemon] C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe (Hewlett-Packard)
O4 - HKLM..\Run: [UpdateReminder] C:\Archivos de programa\Eset\UpdateReminder.exe (ESET, spol. s r.o.)
O4 - HKCU..\Run: [{98E282DF-05AD-CF7F-8D70-1D64E1154032}] C:\Documents and Settings\Users\Datos de programa\Wogiow\woeqih.exe (Packard Bell BV)
O4 - HKCU..\Run: [ares] C:\Archivos de programa\Ares\Ares.exe (Ares Development Group)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\System32\imon.dll (Eset )
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 200.83.1.5 190.160.0.15 200.74.121.12
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B485E522-94E8-4390-AC35-7FD97F21B307}: DhcpNameServer = 200.83.1.5 190.160.0.15 200.74.121.12
O18 - Protocol\Handler\base64 {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Archivos de programa\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O18 - Protocol\Handler\chrome {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Archivos de programa\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Archivos de programa\Archivos comunes\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\prox {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Archivos de programa\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Archivos de programa\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Mi página de inicio actual) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Internet Explorer Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Internet Explorer Wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-06-23 21:08:06 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{00943f40-ec77-11e0-8f6d-0024d20e36f0}\Shell - "" = AutoRun
O33 - MountPoints2\{00943f40-ec77-11e0-8f6d-0024d20e36f0}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{5287d188-9f2c-11e0-8f05-0024d20e36f0}\Shell - "" = AutoRun
O33 - MountPoints2\{5287d188-9f2c-11e0-8f05-0024d20e36f0}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{5287d18b-9f2c-11e0-8f05-0024d20e36f0}\Shell - "" = AutoRun
O33 - MountPoints2\{5287d18b-9f2c-11e0-8f05-0024d20e36f0}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{f6745126-9f96-11e0-8f0c-0024d20e36f0}\Shell - "" = AutoRun
O33 - MountPoints2\{f6745126-9f96-11e0-8f0c-0024d20e36f0}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{feb1b84e-bf8d-11e0-8f3d-0024d20e36f0}\Shell - "" = AutoRun
O33 - MountPoints2\{feb1b84e-bf8d-11e0-8f3d-0024d20e36f0}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2012-01-01 17:42:44 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Users\Escritorio\OTL.exe
[2011-12-31 17:57:28 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Adobe
[2011-12-18 09:16:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\Configuración local\Datos de programa\Temp
[2011-12-18 09:14:55 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Archivos comunes\Adobe
[2011-12-18 09:08:45 | 000,000,000 | ---D | C] -- C:\Archivos de programa\BrowserCompanion
[2011-12-18 09:08:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\AppData
[2011-12-18 08:57:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\Datos de programa\ZoomBrowser EX
[2011-12-18 08:48:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documentos\Canon MyCameraFiles
[2011-12-18 08:48:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Datos de programa\ZoomBrowser
[2011-12-18 08:48:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Canon Utilities
[2011-12-18 08:47:57 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Canon
[2011-12-18 08:46:25 | 000,000,000 | ---D | C] -- C:\Archivos de programa\MSBuild
[2011-12-18 08:43:52 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2011-12-18 08:43:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2011-12-18 08:43:09 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Reference Assemblies
[2011-12-18 08:39:50 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2011-12-18 08:39:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2011-12-18 08:36:47 | 000,000,000 | ---D | C] -- C:\Archivos de programa\Archivos comunes\Canon
[2011-12-11 21:55:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\Configuración local\Datos de programa\Identities
[2011-12-11 21:55:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\Datos de programa\Wogiow
[2011-12-11 21:55:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Users\Datos de programa\Ciu
[2011-12-04 21:16:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Microsoft Silverlight
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[20 C:\Documents and Settings\Users\Datos de programa\*.tmp files -> C:\Documents and Settings\Users\Datos de programa\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012-01-01 17:42:49 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Users\Escritorio\OTL.exe
[2012-01-01 17:15:25 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012-01-01 17:15:02 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012-01-01 17:02:00 | 000,000,480 | ---- | M] () -- C:\WINDOWS\tasks\HP Photo Creations Communicator.job
[2011-12-31 17:57:55 | 000,001,769 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Adobe Reader X.lnk
[2011-12-31 17:54:30 | 000,000,012 | ---- | M] () -- C:\Documents and Settings\All Users\Datos de programa\ReminderNextRun
[2011-12-28 18:48:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2011-12-28 11:27:53 | 000,493,256 | ---- | M] () -- C:\WINDOWS\System32\perfh00A.dat
[2011-12-28 11:27:53 | 000,430,830 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-12-28 11:27:53 | 000,085,716 | ---- | M] () -- C:\WINDOWS\System32\perfc00A.dat
[2011-12-28 11:27:53 | 000,067,554 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-12-20 20:40:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2011-12-18 09:37:18 | 000,367,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-12-18 09:35:24 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011-12-18 09:08:54 | 000,000,237 | ---- | M] () -- C:\user.js
[2011-12-18 08:49:15 | 000,000,822 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\DCSD Guía del software.lnk
[2011-12-18 08:49:10 | 000,000,902 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\Guía de impresión personal.lnk
[2011-12-18 08:49:08 | 000,000,872 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\PowerShot SX130 IS Guía del usuario de la cámara.lnk
[2011-12-18 08:48:14 | 000,000,972 | ---- | M] () -- C:\Documents and Settings\All Users\Escritorio\ZoomBrowser EX.lnk
[2011-12-11 14:00:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2011-12-03 19:39:04 | 000,018,432 | ---- | M] () -- C:\Documents and Settings\Users\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[20 C:\Documents and Settings\Users\Datos de programa\*.tmp files -> C:\Documents and Settings\Users\Datos de programa\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011-12-31 17:57:55 | 000,002,347 | ---- | C] () -- C:\Documents and Settings\All Users\Menú Inicio\Programas\Adobe Reader X.lnk
[2011-12-31 17:57:55 | 000,001,769 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Adobe Reader X.lnk
[2011-12-18 09:08:53 | 000,000,237 | ---- | C] () -- C:\user.js
[2011-12-18 08:49:15 | 000,000,822 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\DCSD Guía del software.lnk
[2011-12-18 08:49:10 | 000,000,902 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\Guía de impresión personal.lnk
[2011-12-18 08:49:08 | 000,000,872 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\PowerShot SX130 IS Guía del usuario de la cámara.lnk
[2011-12-18 08:48:14 | 000,000,972 | ---- | C] () -- C:\Documents and Settings\All Users\Escritorio\ZoomBrowser EX.lnk
[2011-12-18 08:46:20 | 000,217,120 | ---- | C] () -- C:\Documents and Settings\LocalService\Configuración local\Datos de programa\FontCache3.0.0.0.dat
[2011-08-06 20:43:26 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2011-07-02 23:04:43 | 000,000,287 | ---- | C] () -- C:\WINDOWS\hpqcopy.INI
[2011-07-02 22:47:11 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\VegaShEx.dll
[2011-07-02 22:46:53 | 000,091,136 | ---- | C] () -- C:\WINDOWS\System32\Lfkodak.dll
[2011-07-02 22:46:52 | 000,308,224 | ---- | C] () -- C:\WINDOWS\System32\Lffpx7.dll
[2011-06-25 10:52:51 | 000,018,432 | ---- | C] () -- C:\Documents and Settings\Users\Configuración local\Datos de programa\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-06-25 10:04:29 | 000,064,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\SENTINEL.SYS
[2011-06-25 10:04:29 | 000,038,400 | ---- | C] () -- C:\WINDOWS\System32\SNTI386.DLL
[2011-06-25 10:04:29 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\RNBOVDD.DLL
[2011-06-25 10:04:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MTSTACK.INI
[2011-06-25 10:04:12 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\MTSTACK.EXE
[2011-06-24 14:26:46 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2011-06-24 14:26:46 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2011-06-24 14:26:46 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2011-06-24 14:26:46 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2011-06-24 14:26:46 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2011-06-24 14:26:46 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2011-06-24 01:37:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011-06-24 01:31:37 | 006,184,960 | ---- | C] () -- C:\WINDOWS\System32\RTS5121icon.dll
[2011-06-24 01:16:40 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v5016.dll
[2011-06-24 01:16:39 | 002,026,604 | ---- | C] () -- C:\WINDOWS\System32\igkrng500.bin
[2011-06-24 01:16:37 | 000,442,964 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin
[2011-06-24 01:04:00 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2011-06-24 00:57:30 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Datos de programa\ReminderNextRun
[2011-06-24 00:55:01 | 000,015,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\nod32drv.sys
[2011-06-23 22:21:52 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-06-23 21:10:13 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011-06-23 21:04:58 | 000,021,900 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011-06-23 15:56:07 | 000,004,205 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011-06-23 15:54:50 | 000,367,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008-04-14 09:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008-04-14 09:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008-04-14 09:00:00 | 000,493,256 | ---- | C] () -- C:\WINDOWS\System32\perfh00A.dat
[2008-04-14 09:00:00 | 000,430,830 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008-04-14 09:00:00 | 000,317,534 | ---- | C] () -- C:\WINDOWS\System32\perfi00A.dat
[2008-04-14 09:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008-04-14 09:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008-04-14 09:00:00 | 000,085,716 | ---- | C] () -- C:\WINDOWS\System32\perfc00A.dat
[2008-04-14 09:00:00 | 000,067,554 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008-04-14 09:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008-04-14 09:00:00 | 000,036,284 | ---- | C] () -- C:\WINDOWS\System32\perfd00A.dat
[2008-04-14 09:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008-04-14 09:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008-04-14 09:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008-04-14 09:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008-04-14 09:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
========== LOP Check ==========
[2011-11-12 23:44:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Babylon
[2011-08-15 11:12:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Soft Solutions
[2011-06-24 14:25:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Datos de programa\Ulead Systems
[2011-11-12 23:44:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\Babylon
[2011-11-12 23:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\BabylonToolbar
[2011-07-02 22:45:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\Carpeta de carga de Share-to-Web
[2012-01-01 17:38:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\Ciu
[2011-11-12 23:46:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\FVDToolbar
[2012-01-01 17:40:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\PriceGong
[2011-06-24 14:25:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\Ulead Systems
[2011-12-11 21:55:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Users\Datos de programa\Wogiow
[2011-11-21 10:10:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2011-12-20 20:40:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2011-12-28 18:48:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2011-12-11 14:00:00 | 000,000,478 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
========== Purity Check ==========
< End of report >